bugs.gentoo.orgConfirmation
http://bugs.gentoo.org/show_bug.cgi?id=201570 CVE-2007-5849
Common UNIX Printing System 1.2/1.3 SNMP - 'asn1_get_string()' Remote Buffer Overflow
Record summary
CVE-2007-5849 has a selected CVSS score of 9.3; EIP currently links 1 catalogued exploit.
Description
Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBCommon UNIX Printing System 1.2/1.3 SNMP - 'asn1_get_string()' Remote Buffer OverflowExploitDB exploitby wei_wangNot analyzed1 file
References
Showing 12 of 27docs.info.apple.comConfirmation
http://docs.info.apple.com/article.html?artnum=307179 APPLE-SA-2007-12-17Vendor advisory
http://lists.apple.com/archives/security-announce/2007/Dec/msg00002.html SUSE-SA:2008:002Vendor advisory
http://lists.opensuse.org/opensuse-security-announce/2008-01/msg00003.html 28113Third-party advisory
http://secunia.com/advisories/28113 28129Third-party advisory
http://secunia.com/advisories/28129 28136Third-party advisory
http://secunia.com/advisories/28136 28200Third-party advisory
http://secunia.com/advisories/28200 28386Third-party advisory
http://secunia.com/advisories/28386 28441Third-party advisory
http://secunia.com/advisories/28441 28636Third-party advisory
http://secunia.com/advisories/28636 28676Third-party advisory
http://secunia.com/advisories/28676